CVE-2023-21566: Visual Studio Elevation of Privilege Vulnerability
Visual Studio Elevation of Privilege Vulnerability
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 16.11.24 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 17.0.19 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 17.4.5 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 15.9.52 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 17.2.13
Event History
Frequently Asked Questions
What is CVE-2023-21566?
CVE-2023-21566 is a Visual Studio Elevation of Privilege Vulnerability.
Which versions of Microsoft Visual Studio are affected by CVE-2023-21566?
Microsoft Visual Studio 2017 (version 15.0 - 15.9.52), Visual Studio 2019 (version 16.0 - 16.11.24), and Visual Studio 2022 (version 17.0 - 17.4.5) are affected by CVE-2023-21566.
What is the severity of CVE-2023-21566?
CVE-2023-21566 has a severity rating of 7.8 (High).
How do I fix CVE-2023-21566 in Microsoft Visual Studio 2017?
To fix CVE-2023-21566 in Microsoft Visual Studio 2017, update to version 15.9.53 or later.
How do I fix CVE-2023-21566 in Microsoft Visual Studio 2019 and 2022?
To fix CVE-2023-21566 in Microsoft Visual Studio 2019 or 2022, update to the latest version available.